Skip to content
View B1luuU's full-sized avatar

Block or report B1luuU

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Two paired Claude skills · 90+ recon modules · 48 secret-regex patterns · 80+ dorks · 9 read-only credential validators · 27 attack-path templates · 5,500+ lines of structured tradecraft. Drop-in S…

Python 1,788 344 Updated Jun 8, 2026

Collection of Facebook Bug Bounty Writeups

830 150 Updated Mar 11, 2026

Agent skills for Obsidian. Teach your agent to use Obsidian CLI and open formats including Markdown, Bases, JSON Canvas.

36,326 2,578 Updated Jun 8, 2026

Disposable webmail server (similar to Mailinator) with built in SMTP, POP3, RESTful servers; no DB required.

Go 2,222 214 Updated Apr 2, 2026

MCP server + REST API para validacao de CPFs e consulta ao TRT3 com solver de CAPTCHA CRNN

Python 19 12 Updated Apr 27, 2026

Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more

Kotlin 1,294 202 Updated Jun 10, 2026

Open-source mobile security testing suite for iOS and Android. Previously Passionfruit

TypeScript 1,334 106 Updated Jun 17, 2026

An agent-managed museum exhibit, built in Rust with Gajae-Code / LazyCodex — developed and maintained with no human intervention.

Rust 194,119 109,928 Updated Jun 8, 2026

An MCP server to let AI agents control Intruder

Python 24 7 Updated Apr 28, 2026

AndroHunter

Java 412 69 Updated Mar 8, 2026

Lightweight S3 misconfiguration and takeover detection tool

Python 9 3 Updated Mar 4, 2026

A list of established remote companies

8,836 701 Updated Apr 16, 2026

Android deeplink misconfiguration detector and exploitation tool

Python 84 12 Updated Feb 22, 2026

WebSocket Penetration Testing Toolkit for Burp Suite

Java 30 3 Updated Mar 5, 2026

A Model Context Protocol (MCP) server for querying the CVE-Search API

Python 100 15 Updated Jul 26, 2025

JSON Web Token Hack Toolkit

Rust 1,001 120 Updated Jun 21, 2026

Agentic Pentesting MCP server that discovers, exploits, and reports web application vulnerabilities.

Python 178 48 Updated Feb 22, 2026

Persistent Context Across Sessions for Every Agent – Captures everything your agent does during sessions, compresses it with AI, and injects relevant context back into future sessions. Works with C…

JavaScript 83,543 7,226 Updated Jun 21, 2026

A Burp Suite extension for GraphQL security testing.

Java 64 10 Updated Mar 29, 2026

AI-Powered Dark Web OSINT Tool

Python 5,546 1,084 Updated Jun 2, 2026

Cloudflare Turnstile 绕过工具 | Cloudflare Bypass Tool based on SeleniumBase UC Mode | 支持 Mac/Windows/Linux

Python 381 67 Updated Jun 12, 2026

Auto Frida is a powerful, all-in-one automation toolkit that handles everything from Frida installation to script injection. Zero manual setup required – just connect your device and start testing.

JavaScript 131 28 Updated Apr 15, 2026

Python-based static analyzer for Android APKs that extracts attack surface and flags high-risk vulnerability patterns with lightweight taint heuristics.

Python 59 15 Updated Feb 22, 2026

A tool for automating interactions with Android devices - including ADB, AndroGuard, and Frida interactivity.

Python 164 14 Updated Apr 14, 2024

A tool for analysing Android APKs and extracting root, integrity, and tamper detection checks.

Python 80 5 Updated Apr 13, 2024

A comprehensive penetration testing operations dashboard for managing projects, tasks, findings, clients, and assets. Built with Next.js, Express, and MongoDB.

TypeScript 311 55 Updated May 22, 2026

An advanced Frida-based instrumentation suite designed for Android App VAPT and security auditing.

JavaScript 5 2 Updated Dec 30, 2025

A fast and efficient subdomain hijacking scanner that checks for takeover vulnerabilities by matching HTTP response bodies against predefined service fingerprints.

Go 31 6 Updated Apr 12, 2026

Shannon is an autonomous, white-box AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabilities before t…

TypeScript 44,874 5,208 Updated Jun 20, 2026
Next